CVE-2001-0522

Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an attacker to gain privileges via format strings in the original filename that is stored in an encrypted file.
References
Link Resource
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000399
http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-023-01
http://online.securityfocus.com/archive/1/188218
http://www.calderasystems.com/support/security/advisories/CSSA-2001-020.0.txt
http://www.debian.org/security/2001/dsa-061
http://www.gnupg.org/whatsnew.html#rn20010529
http://www.kb.cert.org/vuls/id/403051 US Government Resource
http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-053.php3 Patch Vendor Advisory
http://www.novell.com/linux/security/advisories/2001_020_gpg_txt.html
http://www.osvdb.org/1845
http://www.redhat.com/support/errata/RHSA-2001-073.html
http://www.securityfocus.com/bid/2797
http://www.turbolinux.com/pipermail/tl-security-announce/2001-June/000439.html
https://exchange.xforce.ibmcloud.com/vulnerabilities/6642
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000399
http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-023-01
http://online.securityfocus.com/archive/1/188218
http://www.calderasystems.com/support/security/advisories/CSSA-2001-020.0.txt
http://www.debian.org/security/2001/dsa-061
http://www.gnupg.org/whatsnew.html#rn20010529
http://www.kb.cert.org/vuls/id/403051 US Government Resource
http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-053.php3 Patch Vendor Advisory
http://www.novell.com/linux/security/advisories/2001_020_gpg_txt.html
http://www.osvdb.org/1845
http://www.redhat.com/support/errata/RHSA-2001-073.html
http://www.securityfocus.com/bid/2797
http://www.turbolinux.com/pipermail/tl-security-announce/2001-June/000439.html
https://exchange.xforce.ibmcloud.com/vulnerabilities/6642
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gnu:privacy_guard:7.1:*:*:*:*:*:*:*
cpe:2.3:a:gnu:privacy_guard:7.2:*:*:*:*:*:*:*
cpe:2.3:a:gnu:privacy_guard:8.0:*:*:*:*:*:*:*

History

20 Nov 2024, 23:35

Type Values Removed Values Added
References () http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000399 - () http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000399 -
References () http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-023-01 - () http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-023-01 -
References () http://online.securityfocus.com/archive/1/188218 - () http://online.securityfocus.com/archive/1/188218 -
References () http://www.calderasystems.com/support/security/advisories/CSSA-2001-020.0.txt - () http://www.calderasystems.com/support/security/advisories/CSSA-2001-020.0.txt -
References () http://www.debian.org/security/2001/dsa-061 - () http://www.debian.org/security/2001/dsa-061 -
References () http://www.gnupg.org/whatsnew.html#rn20010529 - () http://www.gnupg.org/whatsnew.html#rn20010529 -
References () http://www.kb.cert.org/vuls/id/403051 - US Government Resource () http://www.kb.cert.org/vuls/id/403051 - US Government Resource
References () http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-053.php3 - Patch, Vendor Advisory () http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-053.php3 - Patch, Vendor Advisory
References () http://www.novell.com/linux/security/advisories/2001_020_gpg_txt.html - () http://www.novell.com/linux/security/advisories/2001_020_gpg_txt.html -
References () http://www.osvdb.org/1845 - () http://www.osvdb.org/1845 -
References () http://www.redhat.com/support/errata/RHSA-2001-073.html - () http://www.redhat.com/support/errata/RHSA-2001-073.html -
References () http://www.securityfocus.com/bid/2797 - () http://www.securityfocus.com/bid/2797 -
References () http://www.turbolinux.com/pipermail/tl-security-announce/2001-June/000439.html - () http://www.turbolinux.com/pipermail/tl-security-announce/2001-June/000439.html -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/6642 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/6642 -

Information

Published : 2001-08-14 04:00

Updated : 2024-11-20 23:35


NVD link : CVE-2001-0522

Mitre link : CVE-2001-0522

CVE.ORG link : CVE-2001-0522


JSON object : View

Products Affected

gnu

  • privacy_guard